Close Menu
  • Home
  • Opinion
  • Region
    • Africa
    • Asia
    • Europe
    • Middle East
    • North America
    • Oceania
    • South America
  • AI & Machine Learning
  • Robotics & Automation
  • Space & Deep Tech
  • Web3 & Digital Economies
  • Climate & Sustainability Tech
  • Biotech & Future Health
  • Mobility & Smart Cities
  • Global Tech Pulse
  • Cybersecurity & Digital Rights
  • Future of Work & Education
  • Trend Radar & Startup Watch
  • Creator Economy & Culture
What's Hot

The most effective electronic mail e-newsletter software program of 2026: Skilled examined

January 26, 2026

ZOLLHOF spins out ZOHO.VC as new €10 million early-stage fund hits 70% first shut

January 26, 2026

HyroTrader Wins Finest Crypto Prop Agency of the 12 months at ProFX Awards Dubai

January 26, 2026
Facebook X (Twitter) Instagram LinkedIn RSS
NextTech NewsNextTech News
Facebook X (Twitter) Instagram LinkedIn RSS
  • Home
  • Africa
  • Asia
  • Europe
  • Middle East
  • North America
  • Oceania
  • South America
  • Opinion
Trending
  • The most effective electronic mail e-newsletter software program of 2026: Skilled examined
  • ZOLLHOF spins out ZOHO.VC as new €10 million early-stage fund hits 70% first shut
  • HyroTrader Wins Finest Crypto Prop Agency of the 12 months at ProFX Awards Dubai
  • How this operations lead went from an internship to management
  • UK medicines company seized 20M unlawful medicine final yr, together with GLP-1s
  • 25 Trade Voices On Instruments, Commerce-Offs, And Authorized Threat
  • In regional first, Singapore exams extra environment friendly direct-current energy for knowledge centres
  • IT agency Origina expands Dublin operations creating 350 jobs
Monday, January 26
NextTech NewsNextTech News
Home - Cybersecurity & Digital Rights - Zoom and GitLab Launch Safety Updates Fixing RCE, DoS, and 2FA Bypass Flaws
Cybersecurity & Digital Rights

Zoom and GitLab Launch Safety Updates Fixing RCE, DoS, and 2FA Bypass Flaws

NextTechBy NextTechJanuary 26, 2026No Comments3 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Telegram Email Copy Link
Follow Us
Google News Flipboard
Zoom and GitLab Launch Safety Updates Fixing RCE, DoS, and 2FA Bypass Flaws
Share
Facebook Twitter LinkedIn Pinterest Email


Ravie LakshmananJan 21, 2026Vulnerability / Community Safety

Zoom and GitLab have launched safety updates to resolve a variety of safety vulnerabilities that might lead to denial-of-service (DoS) and distant code execution.

Essentially the most extreme of the lot is a important safety flaw impacting Zoom Node Multimedia Routers (MMRs) that might allow a gathering participant to conduct distant code execution assaults. The vulnerability, tracked as CVE-2026-22844 and found internally by its Offensive Safety staff, carries a CVSS rating of 9.9 out of 10.0.

“A command injection vulnerability in Zoom Node Multimedia Routers (MMRs) earlier than model 5.2.1716.0 could permit a gathering participant to conduct distant code execution of the MMR through community entry,” the corporate famous in a Tuesday alert.

Zoom is recommending that clients utilizing Zoom Node Conferences, Hybrid, or Assembly Connector deployments replace to the most recent out there MMR model to safeguard in opposition to any potential risk.

There isn’t any proof that the safety flaw has been exploited within the wild. The vulnerability impacts the next variations –

  • Zoom Node Conferences Hybrid (ZMH) MMR module variations prior to five.2.1716.0
  • Zoom Node Assembly Connector (MC) MMR module variations prior to five.2.1716.0
Cybersecurity

GitLab Releases Patches for Extreme Flaws

The disclosure comes as GitLab launched fixes for a number of high-severity flaws affecting its Group Version (CE) and Enterprise Version (EE) that might lead to DoS and a bypass of two-factor authentication (2FA) protections. The shortcomings are listed under –

  • CVE-2025-13927 (CVSS rating: 7.5) – A vulnerability that might permit an unauthenticated consumer to create a DoS situation by sending crafted requests with malformed authentication information (Impacts all variations from 11.9 earlier than 18.6.4, 18.7 earlier than 18.7.2, and 18.8 earlier than 18.8.2)
  • CVE-2025-13928 (CVSS rating: 7.5) – An incorrect authorization vulnerability within the Releases API that might permit an unauthenticated consumer to trigger a DoS situation (Impacts all variations from 17.7 earlier than 18.6.4, 18.7 earlier than 18.7.2, and 18.8 earlier than 18.8.2)
  • CVE-2026-0723 (CVSS rating: 7.4) – A vulnerability that might permit a person with present information of a sufferer’s credential ID to bypass 2FA by submitting solid gadget responses (Impacts all variations from 18.6 earlier than 18.6.4, 18.7 earlier than 18.7.2, and 18.8 earlier than 18.8.2 )

Additionally remediated by GitLab are two different medium-severity bugs that might additionally set off a DoS situation (CVE-2025-13335, CVSS rating: 6.5, and CVE-2026-1102, CVSS rating: 5.3) by configuring malformed Wiki paperwork that bypass cycle detection and sending repeated malformed SSH authentication requests, respectively.

Elevate your perspective with NextTech Information, the place innovation meets perception.
Uncover the most recent breakthroughs, get unique updates, and join with a worldwide community of future-focused thinkers.
Unlock tomorrow’s tendencies at the moment: learn extra, subscribe to our publication, and develop into a part of the NextTech group at NextTech-news.com

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
NextTech
  • Website

Related Posts

‘Rattling Susceptible’ Coaching Apps Go away Distributors’ Clouds Uncovered

January 26, 2026

Phishing Marketing campaign Zeroes in on LastPass Clients

January 25, 2026

Kids and chatbots: What dad and mom ought to know

January 25, 2026
Add A Comment
Leave A Reply Cancel Reply

Economy News

The most effective electronic mail e-newsletter software program of 2026: Skilled examined

By NextTechJanuary 26, 2026

Substack takes a radically completely different strategy to the opposite platforms on this checklist. It…

ZOLLHOF spins out ZOHO.VC as new €10 million early-stage fund hits 70% first shut

January 26, 2026

HyroTrader Wins Finest Crypto Prop Agency of the 12 months at ProFX Awards Dubai

January 26, 2026
Top Trending

The most effective electronic mail e-newsletter software program of 2026: Skilled examined

By NextTechJanuary 26, 2026

Substack takes a radically completely different strategy to the opposite platforms on…

ZOLLHOF spins out ZOHO.VC as new €10 million early-stage fund hits 70% first shut

By NextTechJanuary 26, 2026

Nuremberg-based ZOHO.VC, the brand new enterprise capital arm of ZOLLHOF – Tech…

HyroTrader Wins Finest Crypto Prop Agency of the 12 months at ProFX Awards Dubai

By NextTechJanuary 26, 2026

HyroTrader, a crypto proprietary buying and selling agency based in early 2023…

Subscribe to News

Get the latest sports news from NewsSite about world, sports and politics.

NEXTTECH-LOGO
Facebook X (Twitter) Instagram YouTube

AI & Machine Learning

Robotics & Automation

Space & Deep Tech

Web3 & Digital Economies

Climate & Sustainability Tech

Biotech & Future Health

Mobility & Smart Cities

Global Tech Pulse

Cybersecurity & Digital Rights

Future of Work & Education

Creator Economy & Culture

Trend Radar & Startup Watch

News By Region

Africa

Asia

Europe

Middle East

North America

Oceania

South America

2025 © NextTech-News. All Rights Reserved
  • About Us
  • Contact Us
  • Privacy Policy
  • Terms Of Service
  • Advertise With Us
  • Write For Us
  • Submit Article & Press Release

Type above and press Enter to search. Press Esc to cancel.

Subscribe For Latest Updates

Sign up to best of Tech news, informed analysis and opinions on what matters to you.

Invalid email address
 We respect your inbox and never send spam. You can unsubscribe from our newsletter at any time.     
Thanks for subscribing!